Dynamic Multipoint Virtual Private Network
Cisco IOS DMVPN Overview
DMVPN Explained
Dynamic Multipoint VPN (DMVPN)
Configuring Dynamic Multipoint VPN (DMVPN) using GRE over IPSec between Multiple Routers
Next Hop Resolution Protocol (NHRP) is sometimes used to improve the efficiency of routing computer network traffic over Non-Broadcast, Multiple Access (NBMA) Networks. It is defined in IETF RFC 2332, and further described in RFC 2333.
Configuring NHRP
Reverse route injection (RRI) is the ability for static routes to be
automatically inserted into the routing process for those networks and
hosts protected by a remote tunnel endpoint. These protected hosts and
networks are known as remote proxy identities.
Each route is created on the basis of the remote proxy network and mask,
with the next hop to this network being the remote tunnel endpoint. By
using the remote Virtual Private Network (VPN) router as the next hop,
the traffic is forced through the crypto process to be encrypted.
Enhancements to the default behavior of RRI, the addition of a route tag
value, and enhancements to how RRI is configured were added to the
Reverse Route Injection feature in Cisco IOS Release 12.3(14)T.
An enhancement was added in Cisco IOS Release 12.4(15)T that allows a
distance metric to be set for routes that are created by a VPN process
so that the dynamically learned route on a router can take precedence
over a locally configured static route.
Reverse Route Injection
No comments:
Post a Comment